1. Scope and controller
This Privacy Policy describes how Fetra AI ("Fetra", "we", "us", or "our") collects, uses, discloses, and protects personal information when you visit our websites, create an account, set up a workspace, connect social accounts, use the dashboard, interact with the AI manager, upload files, publish content, or contact support.
For personal information we process to provide the Service, Fetra is generally the controller of account, billing, usage, and support information. For personal information you upload, generate, or process on behalf of your business, clients, employees, or customers, you may be the controller and Fetra may act as a processor or service provider, depending on the context and any data processing agreement.
2. Personal information we collect
Information you provide
- Account information, such as name, email address, password or authentication method, profile image, language preference, and account settings.
- Workspace information, such as company name, business type, industry, brand description, product or service details, logo, website, social profile links, strategy notes, team members, roles, and invitations.
- Content and files, such as prompts, chats, captions, drafts, images, videos, documents, brand guidelines, uploaded materials, comments, approvals, and publishing instructions.
- Support and communications, such as messages you send to us, survey responses, feedback, issue reports, and call or meeting notes.
- Billing information, such as plan, invoice details, billing contact, tax information, and payment status. Full payment card details are processed by our payment providers, not stored directly by Fetra.
Information from connected social accounts
- Account identifiers, handles, display names, profile images, platform type, page or channel IDs, access scopes, token metadata, connection status, and synchronization timestamps.
- Content and publishing data needed to draft, schedule, publish, retrieve, display, or analyze posts, such as post IDs, captions, media, status, errors, scheduled times, metrics, comments, and platform responses.
- Permissions and tokens needed to keep integrations working. You can revoke platform permissions through Fetra or through the relevant platform when available.
Information collected automatically
- Usage data, such as pages viewed, features used, buttons clicked, workspace actions, creation history, publishing events, errors, logs, and approximate session activity.
- Device and technical data, such as IP address, browser type, operating system, device identifiers, language, time zone, referral URL, and cookie or similar identifiers.
- Security data, such as authentication events, suspicious activity signals, rate-limit information, and audit logs.
3. How we use personal information
- Provide, maintain, secure, and improve the Service.
- Create and administer accounts, workspaces, roles, social connections, drafts, queues, schedules, and libraries.
- Generate AI-assisted content, plans, summaries, replies, recommendations, and workspace context.
- Publish or schedule content when you instruct us or authorize queues to run.
- Authenticate users, prevent fraud, investigate abuse, debug errors, enforce terms, and protect Fetra, users, and third-party platforms.
- Process billing, subscriptions, invoices, taxes, account notices, service updates, and support requests.
- Analyze feature usage and performance, develop new features, and understand how users move through onboarding and publishing workflows.
- Comply with legal obligations, respond to lawful requests, and establish, exercise, or defend legal claims.
4. Legal bases for EEA, UK, and similar privacy laws
Where a legal basis is required, we rely on one or more of the following:
- Contract, to provide the Service you requested.
- Legitimate interests, such as securing the Service, improving features, preventing abuse, supporting users, and running our business, where those interests are not overridden by your rights.
- Consent, such as for certain cookies, marketing communications, or optional integrations where required.
- Legal obligations, such as tax, accounting, compliance, and lawful request obligations.
6. AI processing and model providers
Fetra may send prompts, workspace context, files, social account information, drafts, and related content to AI model providers or AI infrastructure providers to generate outputs and operate AI features. We limit what is sent based on the feature and your instructions.
We require service providers to process information for Fetra business purposes and to protect it under contractual obligations. We do not permit service providers to use your Customer Content to train their general models unless you separately authorize it or the feature clearly says otherwise.
You should not submit sensitive personal information, regulated health information, payment card numbers, government identifiers, trade secrets, or confidential third-party information unless you have authority and a legitimate need to process it in Fetra.
8. Retention
We keep personal information for as long as needed to provide the Service, maintain your account and workspaces, comply with legal obligations, resolve disputes, enforce agreements, secure the Service, and maintain backups. Retention periods vary based on the type of information, plan, workspace settings, legal requirements, and operational needs.
When information is no longer needed, we delete, de-identify, or aggregate it where reasonably practical. Backup copies may persist for a limited period before deletion according to backup cycles.
9. Security
We use administrative, technical, and organizational safeguards designed to protect personal information, such as access controls, encryption in transit where appropriate, monitoring, logging, least-privilege practices, and provider security reviews. No online service is completely secure, and we cannot guarantee absolute security.
You are responsible for using strong authentication, limiting workspace access, protecting connected social accounts, and promptly notifying us about suspected unauthorized access.
10. International transfers
Fetra may process and store information in the United States and other countries where we or our service providers operate. These countries may have data protection laws different from those in your country. Where required, we use appropriate transfer mechanisms, such as contractual safeguards, adequacy decisions, or other lawful transfer tools.
11. Your choices and privacy rights
Depending on where you live, you may have rights to access, correct, delete, export, restrict, object to, or withdraw consent for certain processing of your personal information. You may also have the right to opt out of certain sharing, targeted advertising, or profiling, and to appeal a decision about your request.
You can update certain account and workspace information in the Service. To make a privacy request, use the contact details below. We may need to verify your identity and authority before fulfilling a request. Authorized agents may submit requests where allowed by law.
You can unsubscribe from marketing emails by using the unsubscribe link. Service, security, billing, and transactional messages may still be sent.
12. California privacy notice
This section supplements the Privacy Policy for California residents. It uses terms defined by the California Consumer Privacy Act as amended by the California Privacy Rights Act ("CCPA").
Categories collected
- Identifiers, such as name, email, account ID, IP address, online identifiers, and social account handles.
- Commercial information, such as subscription plan, invoices, payment status, and purchase history.
- Internet or network activity, such as usage logs, feature interactions, device data, cookies, and security events.
- Professional or business information, such as company name, role, business type, industry, and workspace details.
- Audio, electronic, visual, or similar information, such as uploaded images, videos, files, and support communications.
- Inferences, such as workspace preferences, content strategy signals, and feature recommendations.
- Sensitive personal information only if you choose to provide it or if it is needed for security, authentication, or legal compliance. We do not use sensitive personal information to infer characteristics.
Sources, purposes, and disclosures
We collect information from you, your workspace members, connected platforms, service providers, and automatic collection tools. We use it for the purposes described in this Policy. We disclose it to service providers, social platforms, workspace members, advisers, authorities, and business transaction parties as described above.
Sale, sharing, and rights
We do not sell personal information for money. We do not knowingly sell or share personal information of people under 16. If future analytics or advertising activities are considered "sharing" or a "sale" under California law, we will provide required notices and opt-out controls.
California residents may request to know, access, correct, delete, and receive a copy of personal information, and may opt out of sale or sharing where applicable. You also have the right not to be discriminated against for exercising CCPA rights.
13. Children
Fetra is not directed to children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child provided personal information to Fetra, use the contact details below and we will take appropriate steps.
14. Changes to this Privacy Policy
We may update this Privacy Policy from time to time. If changes are material, we will provide reasonable notice, such as through the Service, by email, or by posting an updated effective date. The updated Policy applies when it becomes effective.
15. Contact
For privacy questions, privacy requests, or account support, contact [email protected]. Please include the email address associated with your account and enough information for us to understand and verify your request.